
// Open Role at Degica (KOMOJU)
Lead and enhance security operations for KOMOJU, a leading cross-border payment gateway, by investigating threats, improving detection, and mentoring a growing security team to safeguard sensitive customer data.
KOMOJU is the leading cross-border payment gateway for Japan. We power payments for companies like video game distribution platform Steam and the popular mobile app TikTok. Today we help thousands of merchants by providing them with the payment infrastructure they need through developer-friendly API’s to integrations on popular platforms like Shopify and Wix; we help our merchants grow in all markets they are expanding.
We are a payment processor that handles very sensitive data for both our merchants and their customers. As we grow we need to make sure that our security is excellent and that our customer’s data is secure.
We are seeking a skilled and motivated Senior Security Analyst to serve as a technical anchor of our security operations team. You'll lead investigations into complex threats, build the detections that catch them earlier next time, and raise the bar for how the whole team responds to incidents.
This is a hands-on role for someone who has outgrown pure alert triage and wants ownership: of detection quality, of incident outcomes, and of mentoring the analysts around you.
Requirements
Benefits
10 days regular vacation, additional 5 days summer, and year-end holidays.
Paid birthday holiday.
Budget for self-learning allowance, to ensure our employees’ skills remain current.
Access to the O’Reilly Learning Platform.
Language training for Japanese/ English
Twice a week office lunch.
Learning allowance.
By submitting your application, you agree that your personal data will be processed in accordance with our Privacy Policy solely for recruitment and evaluation purposes.
- 5+ years of experience in security operations, incident response, threat hunting, or a closely related cybersecurity function.- Experience managing outsourced SOC providers, including setting expectations, overseeing performance, and ensuring effective monitoring and incident response.- Proven ability to build and scale security operations teams, including defining processes, roles, workflows, and operating procedures.- Deep hands-on experience with SIEM platforms such as Splunk, Microsoft Sentinel, or Elastic, including developing, tuning, and maintaining detection content.- Strong expertise with EDR solutions and endpoint forensics, with the ability to investigate and respond to sophisticated endpoint threats.- Strong understanding of attacker techniques and tradecraft, including practical application of frameworks such as MITRE ATT&CK.- Solid technical foundation in networking, Windows and Linux operating systems, authentication, and identity management.- Scripting and automation skills using Python, PowerShell, or similar languages to support security analysis, investigation, and operational efficiency.- Excellent written and verbal communication skills, with the ability to clearly explain security incidents and technical risks to both engineering teams and executive stakeholders.- Strong judgment and decision-making skills, particularly when operating under pressure, during active incidents, and with incomplete or ambiguous information.